Rodeo
Get started

GoHenry

Head of Information Security

London
Posted 1 day ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Head of Information Security | GoHenry

GoHenry is a UK-based fintech company created by parents to pioneer financial education. More recently, GoHenry moved into Europe and the US by joining forces with French fintech company PixPay and US investing app, Acorns.

Together, Acorns, PixPay, and GoHenry have over 6 million members across 5 countries. We are focused on empowering families with engaging money management tools, educational content, and a seamless product experience that creates financial well-being from birth to adulthood.

We are looking for a Head of Information Security reporting to the VP of Engineering to own GoHenry's security posture end-to-end. GoHenry serves children and families; protecting their data and money is central to our product promise and regulatory obligations (UK Children's Code, PCI-DSS, FCA Consumer Duty, SOC 2, and UK GDPR). In this senior leadership role, you will build and scale a high-performing team spanning information security, cybersecurity, and IT, embedding a culture where security is a first-class concern across the organisation.

What you will do at GoHenry:

  • Own Company Security: Define and lead the information security strategy, roadmap, and governance framework aligned to our NIST-based security framework. Lead incident response, vulnerability management, penetration testing, cloud/application/IT security, and identity and access management. Maintain SOC 2 Type II, PCI-DSS Level 1, and FCA compliance audit readiness.
  • Drive Security Strategy & Vision: Build and evolve a scalable security architecture across cloud infrastructure, application, and network layers. Translate the threat landscape into actionable initiatives for the team and clear context for the board. Own the AI security governance framework and proactively adapt to evolving regulatory environments.
  • Lead & Scale the Team: Manage and develop a multi-disciplinary security function spanning GRC and cybersecurity engineering. Build hiring plans, establish clear priorities, mentor team members, and act as a calm, decisive leader during high-pressure moments.
  • Cross-Functional Collaboration: Serve as the primary security interface with Engineering, Product, Legal, Compliance, Finance, and People teams. Support product teams on security implications (including FCA Consumer Duty and Children's Code obligations) for new features, AI tools, and third-party partnerships.
  • Process, Quality, & Compliance: Drive observable security through meaningful metrics, structured incident logging, and smart alerting. Contribute to executive risk reporting, risk register management, and security budget planning.
  • Track Key Success Metrics: Deliver strong performance across security incident rates, mean time to detection/recovery, clean SOC 2/PCI-DSS/FCA audits, SLA remediation times, team engagement, and company-wide security training completion.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

What you will bring to GoHenry:

  • Proven leadership experience scaling a security function across information security, GRC, and cybersecurity engineering.
  • Strong technical grounding in cloud, application, and network security, with a track record of collaborating directly with engineering teams.
  • Direct experience owning compliance, audit programmes, and AI security governance frameworks (including familiarity with the EU AI Act and UK AI frameworks).
  • Background in a fast-moving, product-led technology business—ideally within regulated fintech or platforms serving children and families.
  • Ability to translate complex security risks into clear, business-relevant language for non-technical leadership and board-level stakeholders.
  • A thoughtful, supportive approach to people management, mentoring, and team development.
  • Comfort with ambiguity, defining strategic problems from scratch, and bringing teams along with you.

What’s in it for you?

All the essentials you would expect, including a workplace pension plan, 33 days of holiday (including public holidays), & great company events local & abroad!

Other Offers:

  • GoFlex - Work from Home, Office, or a mix of both
  • Your Birthday Day off
  • 25 days annual leave, in addition to 8 UK bank holidays
  • An excellent Induction & onboarding program with ongoing learning & development throughout your career
  • A choice between Bupa Health Cash Plan or Bupa Private Medical
  • Death in service – 4x your annual salary from month 1
  • Physical and Mental Wellbeing support and platforms for you and your family
  • Family-friendly leave policies
  • Enhanced maternity leave – 20 weeks full basic pay after 2 years’ service and 26 weeks full basic pay after 3 years’ service
  • Paternity leave – 4 weeks full pay after probation
  • Salary Sacrifice options

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

About GoHenry

We’re on a mission to help every kid be smart with money. Our goal? Create generations of independent, confident young adults, armed with money skills that will set them up for life.

How we do it:

We place the power in the hands of young people, giving them the tools they need to master the financial ropes for themselves. They can spend, save, earn, and give with GoHenry’s prepaid debit card and app – because learning through doing really works (and it’s more fun!). All while our unique built-in controls give parents total peace of mind.

We’re proud to say...

  • We ranked #38 in Newsweek's Top 100 Most Loved Workplaces in the UK in 2023
  • We’re one of Tech Track’s top 50 fastest-growing UK companies.
  • We won Finders Kid’s Cards Customer Satisfaction Awards in 2022 and 2023.
  • We won the Tech for Good award at the Better Society Awards 2023
  • Our kids and parents have donated over £500,000 of their own money to NSPCC via their GoHenry accounts

But we’re still growing, and that’s why we need you.

GoHenry is an equal-opportunity employer, and we’re on a mission to foster a diverse & inclusive workplace. Individuals seeking employment at GoHenry are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Information Security Strategy
Cybersecurity Engineering
GRC
Incident Response
Vulnerability Management
Penetration Testing
Cloud Security
Identity And Access Management
SOC 2 Compliance
PCI-DSS
FCA Compliance
AI Security Governance
NIST Framework
Risk Management
Stakeholder Management
People Management

Location

London, England, United Kingdom

Sign up to applySee more jobs like this